
actions-secrets
Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

Adding this GitHub Action will scan your repository for sensitive data in your source code. We find things like passwords, server host strings, API…

Java utility library with patched CVE-2022-4244 vulnerability, providing common helper classes for I/O, reflection, and CLI argument parsing in…

Type-safe Java Mustache templating engine with compile-time template validation, static value binding, and extensible escaping for HTML and other…

Java source code generator that creates calling classes for Oracle PL/SQL package procedures, supporting various parameter types and automatic type…

Unpack and deobfuscate VMProtect 2 protected binaries with an emulation-based VM explorer, handler profiler, and experimental LLVM recompiler for…

Easy setup of static analysis tools for Android and Java projects.

Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

grep rough audit - source code auditing tool

nodejsscan is a static security code scanner for Node.js applications.

a static analysis tool for finding vulnerabilities in C/C++ source code

Static code analysis tool based on Elasticsearch

Vulnerability research assistant that extracts pseudocode from the IDA Hex-Rays decompiler.

Python Command-Line Ghidra Decompiler

NCC Code Navigator